Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8g35-7rmw-7f59

Опубликовано: 08 апр. 2025
Источник: github
Github: Прошло ревью
CVSS3: 7.3

Описание

Shopware Vulnerable to Blind SQL-injection in DAL aggregations

Impact

The Shopware application API contains a search functionality which enables users to search through information stored within their Shopware instance. The searches performed by this function can be aggregated using the parameters in the “aggregations” object. The ‘name’ field in this “aggregations” in nested object is vulnerable SQL-injection and can be exploited using SQL parameters.

Patches

Update to Shopware 6.6.10.3

Workarounds

For older versions of 6.5 or 6.4 corresponding security measures are also available via a plugin. For the full range of functions, we recommend updating to the latest Shopware version.

Credit

Redteam Pentesting

Пакеты

Наименование

shopware/core

composer
Затронутые версииВерсия исправления

= 6.7.0.0-rc1

6.7.0.0-rc2

Наименование

shopware/platform

composer
Затронутые версииВерсия исправления

= 6.7.0.0-rc1

6.7.0.0-rc2

Наименование

shopware/core

composer
Затронутые версииВерсия исправления

>= 6.6.0.0, <= 6.6.10.2

6.6.10.3

Наименование

shopware/platform

composer
Затронутые версииВерсия исправления

>= 6.6.0.0, <= 6.6.10.2

6.6.10.3

Наименование

shopware/core

composer
Затронутые версииВерсия исправления

< 6.5.8.18

6.5.8.18

Наименование

shopware/platform

composer
Затронутые версииВерсия исправления

< 6.5.8.18

6.5.8.18

EPSS

Процентиль: 84%
0.02119
Низкий

7.3 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.8
nvd
10 месяцев назад

Shopware prior to version 6.5.8.13 is affected by a SQL injection vulnerability in the /api/search/order endpoint. NOTE: this issue exists because of a CVE-2024-22406 and CVE-2024-42357 regression.

EPSS

Процентиль: 84%
0.02119
Низкий

7.3 High

CVSS3

Дефекты

CWE-89